Privacy Policy
Last updated: May 24, 2026
Introduction
PEERtrainer, Inc. ("PEERtrainer," "we," "us," or "our") operates the PEERtrainer platform at peertrainer.com. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, mobile applications, and related services (collectively, the "Platform").
By using the Platform, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the Platform.
Information We Collect
Information You Provide
When you create an account or use the Platform, you may provide:
- Account information: name, email address, display name, handle, password
- Profile information: date of birth, sex, activity level, goals, bio, avatar, location, pronouns
- Experiment data: self-reported outcomes, survey responses, daily check-ins, adherence data
- Community content: posts, comments, replies, and messages
- Communication preferences: notification settings, email digest frequency
Information Collected Automatically
When you access the Platform, we automatically collect:
- Device and browser information: device type, operating system, browser type, screen resolution
- Usage data: pages visited, features used, time spent, click patterns
- Log data: IP address, access times, referring URLs, error logs
- Cookies and similar technologies: session identifiers, preferences, authentication tokens
Information from Third-Party Services
We may receive information from:
- Firebase Authentication: when you sign in via Google, Apple, or email/password authentication
- Analytics providers: aggregated usage patterns and performance metrics
How We Use Your Information
We use collected information to:
- Operate the Platform: create and manage your account, process experiment participation, display results
- Personalize your experience: show relevant experiments, communities, and content based on your profile and goals
- Generate and publish experiment insights: aggregate and analyze cohort data to produce experiment results, outcome reports, case studies, trends, and recommendations — published on PEERtrainer and through external channels including partner reports and marketing material
- Train and evaluate AI/ML models: use anonymized, aggregated, and de-identified data to power Platform features such as experiment recommendations, outcome predictions, and content quality tools
- Communicate with you: send experiment reminders, notifications, email digests, and important platform updates
- Improve the Platform: analyze usage patterns, diagnose technical issues, develop new features
- Ensure safety: detect and prevent fraud, abuse, and violations of our Terms of Service
- Comply with legal obligations: respond to legal requests and enforce our agreements
Experiment Data and Anonymization
Your experiment participation data is central to PEERtrainer's mission. Here is how we handle it:
- Individual data (your personal experiment logs, check-ins, surveys) is visible only to you unless you choose to share it
- Aggregated data is used to generate cohort-level results (e.g., "73% of participants reported strength gains"). This data is stripped of personally identifiable information before analysis
- Segmented results (e.g., results filtered by age band or goals) use only the demographic categories you provide and never identify individuals
- Published results: aggregated and anonymized experiment outcomes, case studies, and cohort analyses may be published on PEERtrainer and shared externally. Results derived from your data that were published or incorporated into reports before your account deletion may persist in those publications indefinitely
- You control sharing: your profile visibility and Share Anonymized Data setting (in Privacy settings) determine whether your data is included in cohort analyses. You may change this preference at any time
Publication and Case Studies
PEERtrainer publishes experiment results and case studies in formats including outcome charts and summaries on the Platform, written write-ups and blog posts, partner and sponsor reports, and academic or media summaries.
How identification works: published results are anonymized by default. If your profile is set to public, or if you have opted in to featured stories, your handle, first name, avatar, and self-reported outcomes may appear in case studies or promotional content. See Section 4 of our Terms of Service for details on featured stories and how to withdraw consent.
To request removal of identifiable content from a publication, contact privacy@peertrainer.com. We will make commercially reasonable efforts to comply; removal from already-distributed or archived publications may not always be possible.
AI and Machine Learning
Anonymized, aggregated, and de-identified data derived from Platform activity — including check-in patterns, outcome trends, and engagement signals — may be used to train, fine-tune, evaluate, and operate AI and machine learning models that power PEERtrainer features.
We do not sell raw personal data to third-party AI model vendors. Where a third-party provider processes data as a service on our behalf, they do so under a data processing agreement and may not use the data for their own independent model training purposes.
Admin Access and Editorial Review
Internal PEERtrainer staff and administrators may access content — including experiments, communities, posts, check-in metadata, and account information — to:
- Moderate content and enforce our Terms of Service
- Edit or improve content quality, accuracy, or safety (see Section 6 of the Terms of Service)
- Investigate abuse reports or support requests
- Respond to legal requirements
Admin access is limited to staff with a legitimate operational need, is logged, and is not used for purposes beyond Platform operation.
Data Storage and Security
Infrastructure
We use the following services to store and process your data:
- Supabase (PostgreSQL): primary database for user profiles, experiment data, and platform content — hosted on AWS infrastructure with encryption at rest
- Firebase (Google Cloud): authentication services and identity management
- Cloudflare R2: media storage (avatars, images, uploaded files) with edge-cached delivery
- Vercel: application hosting and serverless functions with automatic HTTPS
Security Measures
We implement industry-standard security practices including:
- Encryption in transit (TLS/HTTPS) for all data transmission
- Encryption at rest for database storage
- Role-based access controls for platform administration
- Regular security reviews of infrastructure and dependencies
- Secure authentication via Firebase with support for multi-factor authentication
Cookies and Tracking
For details on how we use cookies, see our Cookie Policy.
Data Sharing
We may share your information only in these circumstances:
- With your consent: when you explicitly choose to share content, results, or participate in public discussions
- Aggregated/anonymized data: cohort-level experiment results and case studies that cannot identify individuals
- Service providers: trusted third-party services that help us operate the Platform (hosting, email delivery, analytics, AI model processing), bound by contractual data protection obligations
- Legal requirements: when required by law, regulation, or legal process
- Safety: to protect the rights, safety, or property of PEERtrainer, our users, or the public
Your Rights and Choices
You have the right to:
- Access your data: view all personal information we hold about you through your profile and settings
- Update your data: edit your profile, preferences, and experiment participation at any time
- Control data sharing: toggle your Share Anonymized Data and Profile Visibility settings in your Privacy settings at any time
- Delete your account: request deletion of your account and associated data by contacting us or using account settings
- Export your data: request a copy of your personal data in a portable format
- Control notifications: manage email and push notification preferences in your settings
- Opt out of analytics: use browser-level controls or contact us to opt out of non-essential analytics
- Request removal from publications: contact privacy@peertrainer.com to request removal of identifiable content from published case studies or results
California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act, including the right to know what personal information is collected, the right to delete, and the right to opt out of the sale of personal information. We do not sell personal information.
European Residents (GDPR)
If you are in the European Economic Area, you have rights under the General Data Protection Regulation including access, rectification, erasure, portability, and the right to object to processing. Our legal basis for processing is your consent (for account creation and experiment participation) and legitimate interest (for platform operation, security, and publication of anonymized research).
Children's Privacy
PEERtrainer is not intended for children under 16. We do not knowingly collect personal information from children under 16. If we learn that we have collected such information, we will delete it promptly.
Data Retention
We retain your personal information for as long as your account is active or as needed to provide services. If you delete your account:
- Your profile and personally identifiable information will be removed within 30 days
- Anonymized, aggregated experiment contributions that have been incorporated into cohort results, published case studies, or partner reports may be retained in those publications indefinitely
- Backup copies may persist for up to 90 days before being permanently deleted
Changes to This Policy
We may update this Privacy Policy from time to time. When we make significant changes, we will notify you via email or a prominent notice on the Platform. Your continued use of the Platform after changes take effect constitutes acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or your personal data, contact us at:
- Email: privacy@peertrainer.com
- Address: PEERtrainer, Inc.
For data deletion requests, featured story removal, or GDPR/CCPA inquiries, please email privacy@peertrainer.com with the subject line "Data Request."